On the theme of recent posts about scripting (and automating scanning - if you’re still doing this manually, you’re doing something wrong IMHO!), here’s a useful script I put together to help demo how to trigger a com...
I’m late to publicly comment on this hot topic (and do my best not to post “opinions” online in general!), but I thought I’d offer a personal story on Google’s moves to required app developers provide personal ID to b...
I often post over on the Tripwire/Fortra bIog about the importance of monitoring, but don’t typically talk about the “technical ins and outs” of how I approach and think about Change Audit so I’m hoping to start a ser...
Group Policy is the typical/preferred method of setting many of the requirements for Tripwire IP360 vulnerability scanning and whilst the official endpoint guide is helpful with identifying various settings, it can ta...
The following was created to test a work experience student’s Python skills! It was prior to the official implementation of the REST API, so uses the XML interface and as a result some of this is now slightly dated (u...
One of the most common things I do with Tripwire’s IP360 in Professional Services it automate workflows. Nearly everyone wants a way to quickly trigger a scan (be it on detection of a new machine or a request for furt...
A common request I get is setting up Microsoft PowerBi with Tripwire Enterprise. Whilst we don’t have an official “out-of-the-box” solution for this, TE’s REST API makes this a pretty simple option to get started with...
One of the most common things I need in my lab is access to the web console for Tripwire Enterprise to do demos- but it can be a nuisance to demonstrate with a VM quickly if I’m out on the road… until Tailscale quietl...
In a lot of environments I walk into, clustering is treated as a resilience problem - but not always as a security one. We’re busy designing for uptime, failover, scale, etc… but we don’t always design for consistency...